TLS on news.public-inbox.org [was: may be unstable]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Eric Wong <e@xxxxxxxxx> wrote:
> Hopefully I didn't break anything, stress testing some stuff
> and my own Internet connection is intermittent :<

STARTTLS is now available on port 119, and NNTPS on 563.
I think it works... :x

No idea if it's actually secure or not; but it might help
get around firewalls or traffic filtering.

I'm using Let's Encrypt and IO::Socket::SSL defaults for
SSL_server=1.  This is with the libiosocket-ssl-ssl-perl 2.044-1
package in Debian stable (9.x),

Anyways there's a boatload of changes and size reductions aimed
at C10K+ parallelism starting at:
https://public-inbox.org/meta/20190624025258.25592-1-e@xxxxxxxxx/
But OpenSSL/IO::Socket::SSL overhead remains disappointing,
even with SSL_MODE_RELEASE_BUFFERS :<

HTTPS work hasn't started, yet (but I figure most folks are
using nginx + varnish); and there's other bugs and stuff
I'd need to look at...



[Index of Archives]     [Linux Kernel Development]     [Gcc Help]     [IETF Annouce]     [DCCP]     [Netdev]     [Networking]     [Security]     [V4L]     [Bugtraq]     [Yosemite]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux SCSI]     [Fedora Users]

  Powered by Linux